Question 121

A penetration tester wants to find the password for any account in the domain without locking any of the accounts. Which of the following commands should the tester use?
  • Question 122

    A penetration tester who is performing an engagement notices a specific host is vulnerable to EternalBlue.
    Which of the following would BEST protect against this vulnerability?
  • Question 123

    Which of the following should a penetration tester attack to gain control of the state in the HTTP protocol after the user is logged in?
  • Question 124

    A security analyst needs to perform an on-path attack on BLE smart devices. Which of the following tools would be BEST suited to accomplish this task?
  • Question 125

    Which of the following should be included in scope documentation?